[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Do we need L2TP additionally in following IPSec-ed case?



"Gallagher, Mick" wrote:
> 
> As I understand, the advantage of using IPSec secured L2TP sessions,
> as opposed to IPSec alone, is the fact that PPP can be used to
> configure the dial-up-user's IP connection.
> 
> In this way, the dial-up-user can appear to be on a subnet assigned by
> the corporate server.
> 

This is somewhat correct.

> In the 'pure IPSec' scenario, the IP address of the user must appear
> to the corporate network as the address assigned by the ISP.

This is incorrect. See below.

> 
> A newcomer to IPSec, I'm not aware of any IPSec interface
> configuration facility.
> 

I would suggest subscribing to the ipsra working group list, where we
will be evaluating at least two other configuration facilities which
provide some or all of this same functionality. That list is at
ietf-ipsra@vpnc.org.

To subscribe to the mailing list, send a message to
ietf-ipsra-request@vpnc.org with the single word subscribe in the body
of the message. 

Scott


References: